{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,12]],"date-time":"2026-06-12T16:02:59Z","timestamp":1781280179326,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":50,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,11,12]],"date-time":"2021-11-12T00:00:00Z","timestamp":1636675200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"NSF CAREER","award":["CNS-1553301"],"award-info":[{"award-number":["CNS-1553301"]}]},{"name":"NSF","award":["ECCS-2029323"],"award-info":[{"award-number":["ECCS-2029323"]}]},{"name":"DARPA and NIWC","award":["N66001-15-C-4067"],"award-info":[{"award-number":["N66001-15-C-4067"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,11,12]]},"DOI":"10.1145\/3460120.3484777","type":"proceedings-article","created":{"date-parts":[[2021,11,13]],"date-time":"2021-11-13T12:05:34Z","timestamp":1636805134000},"page":"126-140","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":81,"title":["Robust Adversarial Attacks Against DNN-Based Wireless Communication Systems"],"prefix":"10.1145","author":[{"given":"Alireza","family":"Bahramali","sequence":"first","affiliation":[{"name":"University of Massachusetts Amherst, Amherst, MA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Milad","family":"Nasr","sequence":"additional","affiliation":[{"name":"University of Massachusetts Amherst, Amherst, MA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Amir","family":"Houmansadr","sequence":"additional","affiliation":[{"name":"University of Massachusetts Amherst, Amherst, MA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Dennis","family":"Goeckel","sequence":"additional","affiliation":[{"name":"University of Massachusetts Amherst, Amherst, MA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Don","family":"Towsley","sequence":"additional","affiliation":[{"name":"University of Massachusetts Amherst, Amherst, MA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2021,11,13]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICIoT48696.2020.9089601"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/3324921.3328785"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1109\/MCOM.2014.6736746"},{"key":"e_1_3_2_1_4_1","unstructured":"Nicholas Carlini Anish Athalye Nicolas Papernot Wieland Brendel Jonas Rauber Dimitris Tsipras Ian Goodfellow Aleksander Madry and Alexey Kurakin. 2019. On evaluating adversarial robustness. In arXiv preprint arXiv:1902.06705."},{"key":"e_1_3_2_1_5_1","volume-title":"International Conference on Machine Learning.","author":"Cohen Jeremy","year":"2019","unstructured":"Jeremy Cohen, Elan Rosenfeld, and Zico Kolter. 2019. Certified adversarial robustness via randomized smoothing. In International Conference on Machine Learning."},{"key":"e_1_3_2_1_6_1","volume-title":"Deep learning for wireless communications: An emerging interdisciplinary paradigm","author":"Dai Linglong","year":"2020","unstructured":"Linglong Dai, Ruicheng Jiao, Fumiyuki Adachi, H Vincent Poor, and Lajos Hanzo. 2020. Deep learning for wireless communications: An emerging interdisciplinary paradigm. IEEE Wireless Communications (2020)."},{"key":"e_1_3_2_1_7_1","volume-title":"2020 a. Investigating a Spectral Deception Loss Metric for Training Machine Learning-based Evasion Attacks. arXiv preprint arXiv:2005.13124","author":"DelVecchio Matthew","year":"2020","unstructured":"Matthew DelVecchio, Vanessa Arndorfer, and William C Headley. 2020 a. Investigating a Spectral Deception Loss Metric for Training Machine Learning-based Evasion Attacks. arXiv preprint arXiv:2005.13124 (2020)."},{"key":"e_1_3_2_1_8_1","volume-title":"2020 b. Effects of Forward Error Correction on Communications Aware Evasion Attacks. arXiv preprint arXiv:2005.13123","author":"DelVecchio Matthew","year":"2020","unstructured":"Matthew DelVecchio, Bryse Flowers, and William C Headley. 2020 b. Effects of Forward Error Correction on Communications Aware Evasion Attacks. arXiv preprint arXiv:2005.13123 (2020)."},{"key":"e_1_3_2_1_9_1","volume-title":"Waveform design for 5G and beyond. arXiv preprint arXiv:1902.05999","author":"Demir Ali Fatih","year":"2019","unstructured":"Ali Fatih Demir, Mohamed Elkourdi, Mostafa Ibrahim, and Huseyin Arslan. 2019. Waveform design for 5G and beyond. arXiv preprint arXiv:1902.05999 (2019)."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"crossref","unstructured":"O. Dobre A. Abdi Y. Bar-Ness and Wei Su. 2007. Survey of automatic modulation classification techniques: classical approaches and new trends. (2007).","DOI":"10.1049\/iet-com:20050176"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/MILCOM47813.2019.9020716"},{"key":"e_1_3_2_1_13_1","volume-title":"2019 b. Evaluating adversarial evasion attacks in the context of wireless communications","author":"Flowers Bryse","year":"2019","unstructured":"Bryse Flowers, R Michael Buehrer, and William C Headley. 2019 b. Evaluating adversarial evasion attacks in the context of wireless communications. IEEE Transactions on Information Forensics and Security (2019)."},{"key":"e_1_3_2_1_14_1","volume-title":"International Conference on Artificial Intelligence and Statistics.","author":"Franceschi Jean-Yves","year":"2018","unstructured":"Jean-Yves Franceschi, Alhussein Fawzi, and Omar Fawzi. 2018. Robustness of classifiers to uniform $l_p$ and Gaussian noise. In International Conference on Artificial Intelligence and Statistics."},{"key":"e_1_3_2_1_15_1","volume-title":"Deep learning","author":"Goodfellow Ian","unstructured":"Ian Goodfellow, Yoshua Bengio, and Aaron Courville. 2016. Deep learning. MIT press."},{"key":"e_1_3_2_1_16_1","unstructured":"Ian Goodfellow Jean Pouget-Abadie Mehdi Mirza Bing Xu David Warde-Farley Sherjil Ozair Aaron Courville and Yoshua Bengio. 2014. Generative Adversarial Nets. In Advances in Neural Information Processing Systems 27."},{"key":"e_1_3_2_1_17_1","volume-title":"Explaining and Harnessing Adversarial Examples. 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7--9, 2015, Conference Track Proceedings.","author":"Goodfellow Ian J.","year":"2015","unstructured":"Ian J. Goodfellow, Jonathon Shlens, and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. 3rd International Conference on Learning Representations, ICLR 2015, San Diego, CA, USA, May 7--9, 2015, Conference Track Proceedings."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/CISS.2017.7926071"},{"key":"e_1_3_2_1_19_1","volume-title":"Communication without interception: Defense against deep-learning-based modulation detection. arXiv preprint arXiv:1902.10674","author":"Hameed Muhammad Zaid","year":"2019","unstructured":"Muhammad Zaid Hameed, Andras Gyorgy, and Deniz Gunduz. 2019. Communication without interception: Defense against deep-learning-based modulation detection. arXiv preprint arXiv:1902.10674 (2019)."},{"key":"e_1_3_2_1_20_1","volume-title":"OFDM and its wireless applications: A survey","author":"Hwang Taewon","year":"2008","unstructured":"Taewon Hwang, Chenyang Yang, Gang Wu, Shaoqian Li, and Geoffrey Ye Li. 2008. OFDM and its wireless applications: A survey. IEEE transactions on Vehicular Technology (2008)."},{"key":"e_1_3_2_1_21_1","unstructured":"Yihan Jiang Hyeji Kim Himanshu Asnani Sreeram Kannan Sewoong Oh and Pramod Viswanath. 2019. Turbo autoencoder: Deep learning based channel codes for point-to-point communication channels. In Advances in Neural Information Processing Systems."},{"key":"e_1_3_2_1_22_1","volume-title":"A tutorial on IEEE 802.11 ax high efficiency WLANs","author":"Khorov Evgeny","year":"2018","unstructured":"Evgeny Khorov, Anton Kiryanov, Andrey Lyakhov, and Giuseppe Bianchi. 2018. A tutorial on IEEE 802.11 ax high efficiency WLANs. IEEE Communications Surveys & Tutorials (2018)."},{"key":"e_1_3_2_1_23_1","volume-title":"2020 a. Channel-aware adversarial attacks against deep learning-based wireless signal classifiers. arXiv preprint arXiv:2005.05321","author":"Kim Brian","year":"2020","unstructured":"Brian Kim, Yalin E Sagduyu, Kemal Davaslioglu, Tugba Erpek, and Sennur Ulukus. 2020 a. Channel-aware adversarial attacks against deep learning-based wireless signal classifiers. arXiv preprint arXiv:2005.05321 (2020)."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/CISS48834.2020.1570617416"},{"key":"e_1_3_2_1_25_1","volume-title":"Adam: A Method for Stochastic Optimization. International Conference on Learning Representations","author":"Kingma Diederik","year":"2014","unstructured":"Diederik Kingma and Jimmy Ba. 2014. Adam: A Method for Stochastic Optimization. International Conference on Learning Representations (2014)."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/GlobalSIP45357.2019.8969138"},{"key":"e_1_3_2_1_27_1","volume-title":"Adversarial machine learning at scale. arXiv preprint arXiv:1611.01236","author":"Kurakin Alexey","year":"2016","unstructured":"Alexey Kurakin, Ian Goodfellow, and Samy Bengio. 2016. Adversarial machine learning at scale. arXiv preprint arXiv:1611.01236 (2016)."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/26.701317"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/JSTSP.2018.2794062"},{"key":"e_1_3_2_1_30_1","volume-title":"Towards deep learning models resistant to adversarial attacks. arXiv preprint arXiv:1706.06083","author":"Madry Aleksander","year":"2017","unstructured":"Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. 2017. Towards deep learning models resistant to adversarial attacks. arXiv preprint arXiv:1706.06083 (2017)."},{"key":"e_1_3_2_1_31_1","volume-title":"Automatic modulation classification: A deep learning enabled approach","author":"Meng Fan","year":"2018","unstructured":"Fan Meng, Peng Chen, Lenan Wu, and Xianbin Wang. 2018. Automatic modulation classification: A deep learning enabled approach. IEEE Transactions on Vehicular Technology (2018)."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.17"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/ALLERTON.2016.7852251"},{"key":"e_1_3_2_1_34_1","volume-title":"RNN decoding of linear block codes. arXiv preprint arXiv:1702.07560","author":"Nachmani Eliya","year":"2017","unstructured":"Eliya Nachmani, Elad Marciano, David Burshtein, and Yair Be'ery. 2017. RNN decoding of linear block codes. arXiv preprint arXiv:1702.07560 (2017)."},{"key":"e_1_3_2_1_35_1","volume-title":"Defeating DNN-Based Traffic Analysis Systems in Real-Time With Blind Adversarial Perturbations. In 30th USENIX Security Symposium (USENIX Security 21)","author":"Nasr Milad","year":"2021","unstructured":"Milad Nasr, Alireza Bahramali, and Amir Houmansadr. 2021. Defeating DNN-Based Traffic Analysis Systems in Real-Time With Blind Adversarial Perturbations. In 30th USENIX Security Symposium (USENIX Security 21)."},{"key":"e_1_3_2_1_36_1","volume-title":"Proceedings of the GNU Radio Conference.","author":"O'shea Timothy J","year":"2016","unstructured":"Timothy J O'shea and Nathan West. 2016. Radio machine learning dataset generation with gnu radio. In Proceedings of the GNU Radio Conference."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/TCCN.2017.2758370"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-44188-7_16"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/JSTSP.2018.2797022"},{"key":"e_1_3_2_1_40_1","volume-title":"Transferability in machine learning: from phenomena to black-box attacks using adversarial samples. arXiv preprint arXiv:1605.07277","author":"Papernot Nicolas","year":"2016","unstructured":"Nicolas Papernot, Patrick McDaniel, and Ian Goodfellow. 2016. Transferability in machine learning: from phenomena to black-box attacks using adversarial samples. arXiv preprint arXiv:1605.07277 (2016)."},{"key":"e_1_3_2_1_41_1","volume-title":"Aly El Gamal, and Yonina C Eldar","author":"Ramjee Sharan","year":"2019","unstructured":"Sharan Ramjee, Shengtai Ju, Diyu Yang, Xiaoyu Liu, Aly El Gamal, and Yonina C Eldar. 2019. Fast deep learning for automatic modulation classification. arXiv preprint arXiv:1901.05850 (2019)."},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1145\/3395352.3402625"},{"key":"e_1_3_2_1_43_1","volume-title":"Adversarial attacks on deep-learning based radio signal classification","author":"Sadeghi Meysam","year":"2018","unstructured":"Meysam Sadeghi and Erik G Larsson. 2018. Adversarial attacks on deep-learning based radio signal classification. IEEE Wireless Communications Letters (2018)."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1109\/LCOMM.2019.2901469"},{"key":"e_1_3_2_1_45_1","volume-title":"Generative Adversarial Network in the Air: Deep Adversarial Learning for Wireless Signal Spoofing","author":"Shi Yi","year":"2020","unstructured":"Yi Shi, Kemal Davaslioglu, and Yalin E Sagduyu. 2020. Generative Adversarial Network in the Air: Deep Adversarial Learning for Wireless Signal Spoofing. IEEE Transactions on Cognitive Communications and Networking (2020)."},{"key":"e_1_3_2_1_46_1","volume-title":"Ensemble adversarial training: Attacks and defenses. arXiv preprint arXiv:1705.07204","author":"Tram\u00e8r Florian","year":"2017","unstructured":"Florian Tram\u00e8r, Alexey Kurakin, Nicolas Papernot, Ian Goodfellow, Dan Boneh, and Patrick McDaniel. 2017. Ensemble adversarial training: Attacks and defenses. arXiv preprint arXiv:1705.07204 (2017)."},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"crossref","unstructured":"Muhammad Usama Muhammad Asim Junaid Qadir Ala Al-Fuqaha and Muhammad Ali Imran. 2019. Adversarial Machine Learning Attack on Modulation Classification. In 2019 UK\/China Emerging Technologies (UCET).","DOI":"10.1109\/IWCMC.2019.8766505"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/DySPAN.2017.7920754"},{"key":"e_1_3_2_1_49_1","volume-title":"Geoffrey Ye Li, and Biing-Hwang Juang","author":"Ye Hao","year":"2017","unstructured":"Hao Ye, Geoffrey Ye Li, and Biing-Hwang Juang. 2017. Power of deep learning for channel estimation and signal detection in OFDM systems. IEEE Wireless Communications Letters (2017)."},{"key":"e_1_3_2_1_50_1","volume-title":"Deep-waveform: A learned OFDM receiver based on deep complex convolutional networks. arXiv preprint arXiv:1810.07181","author":"Zhao Zhongyuan","year":"2018","unstructured":"Zhongyuan Zhao, Mehmet C Vuran, Fujuan Guo, and Stephen Scott. 2018. Deep-waveform: A learned OFDM receiver based on deep complex convolutional networks. arXiv preprint arXiv:1810.07181 (2018)."}],"event":{"name":"CCS '21: 2021 ACM SIGSAC Conference on Computer and Communications Security","location":"Virtual Event Republic of Korea","acronym":"CCS '21","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3460120.3484777","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3460120.3484777","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3460120.3484777","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,18]],"date-time":"2025-11-18T20:53:26Z","timestamp":1763499206000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3460120.3484777"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,11,12]]},"references-count":50,"alternative-id":["10.1145\/3460120.3484777","10.1145\/3460120"],"URL":"https:\/\/doi.org\/10.1145\/3460120.3484777","relation":{},"subject":[],"published":{"date-parts":[[2021,11,12]]},"assertion":[{"value":"2021-11-13","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}